THREATOPS
THREAT OPSThreat News › [NotCVE-2026-0011] Nmap 7.99 and Earlier nselib/packet.lua Zero-Length TCP Option Infinite Loop Allows Remote Denial of Service

[NotCVE-2026-0011] Nmap 7.99 and Earlier nselib/packet.lua Zero-Length TCP Option Infinite Loop Allows Remote Denial of Service

lowoss_secPublished 2026-07-29

<p>Posted by advisories on Jul 29</p>----------------------------------------------------------------------------<br /> NotCVE Advisory — NotCVE-2026-0011<br /> ----------------------------------------------------------------------------<br /> <br /> [-] Summary:<br /> Nmap 7.99 and earlier contain a loop with an unreachable exit condition in<br /> the Packet:parse_options() method of nselib/packe

Original source: https://seclists.org/oss-sec/2026/q3/319